Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are impacting your business

Logo GLOBUSANDCOSMOS.COM

Group: Clop

Discovered by ransomware.live: 2025-11-13

Estimated attack date: 2025-11-13

Country: US

Description:

[AI generated] N/A


🕵️ Infostealer activity detected by HudsonRock

Compromised Employees: 0

Compromised Users: 1

Third Party Employee Credentials: 0


External Attack Surface: 1


Infostealer Distribution


DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • domainabuse cscglobal.com
MX Records
  • globusandcosmos-com.mail.protection.outlook.com.
TXT Records
  • 3b59972d-122b-41dc-bf9f-843cf2f17ee8
  • 6d4e0bed-4568-44c1-9f04-8b73c2f237bd
  • 8277b23f-393a-406d-88a2-a27c7f661d21
  • 83394c87-1223-4385-9230-447adadb45e1
  • KxU1/V2pfa8FFDyIrLWHkiaVJwUrvhrdPQEdrcTyu6XsXUq0m3LTp62T5c7GF7mIcGarrwn2C5sj1RuECAgAeQ==
  • ZOOM_verify_KkoCzxSkQdKmpJyK7i3VeQ
  • apple-domain-verification=EQtE1F2fXcFrtMtz
  • f7eSjhUoyLuF48mf5tuHFhZ/sRM4y677wu0Zs7hjiGLVEjiE9NkBEF3AkUgFeq0G3w0Pvd1P8kGZYAzcgiyCow==
  • fe17e0fe-68dc-43f6-983f-3d541b0e6f6b
  • ffee1a60-fe64-4404-91c9-d8dba66c9049
  • google-site-verification=Sm2_ndkW1s-1nZtvR1ECF75DSZQmdo9stmgv_uHhlFw
  • google-site-verification=mYSaTS6bJaLMOWD0fafkzNkPPVINFTN3FIsjjSZTGeQ
  • v=spf1 ip4:170.146.221.0/24 ip4:170.146.220.0/24 ip4:216.46.174.0/24 include:spf.protection.outlook.com include:servers.mcsv.net include:_spf.psm.knowbe4.com -all
  • vYKsah8ddLepbxoHQGQXOMX7/Ql8sCN3P/NfSitC9KYwsV00LImvQe/1bFdvd8sjhLrDtU8bwgZr+G35ectfVw==
  • 3a297985-e18e-4bd3-85e4-c6f41fbd70c8
Cloud / SaaS Services Detected
Apple Mailchimp KnowBe4 Zoom

Leak Screenshot:

Leak Screenshot